CVE-2025-38629 | Linux Kernel up to 6.15.9/6.16.0 ALSA scarlett2_input_select_ctl_info null pointer dereference (Nessus ID 260284 / WID-SEC-2025-1898)
A vulnerability has been found in Linux Kernel up to 6.15.9/6.16.0 and classified as critical. This vulnerability affects the function scarlett2_input_select_ctl_info of the component ALSA. Performing a manipulation results in null pointer dereference.
This vulnerability was named CVE-2025-38629. The attack needs to be approached within the local network. There is no available exploit.
The affected component should be upgraded.